CVE-2024-8253: post-grid
## The Exploit Any WordPress user with Subscriber role or above can escalate to Administrator by sending a single POST request to the form submission endpoint, updating their own `wp_capabilities` user metadata field. ```http POST /wp-adm...
Read article →